CVE-2024-13974
21.07.2025, 14:15
A business logic vulnerability in the Up2Date component of Sophos Firewall older than version 21.0 MR1 (20.0.1) can lead to attackers controlling the firewalls DNS environment to achieve remote code execution.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sophos | firewall_firmware | 𝑥 < 21.0.1 |
𝑥
= Vulnerable software versions